
CVE-2026-91771: path traversal in Weights & Biases wandb before 0.29.0 lets a malicious backend write files outside the download dir, potentially RCE via shell startup or Python import paths. CVSS 8.8. Patch still under https://www.valtersit.com/cve/CVE-2026-91771/ #CVE #infosec #cybersecurity #WeightsBiases #CVEALERT #CVE #infosec #Linux #XSS #valtersit #snippet #SysAdmin #cybersecurity #devsecops #devops #developer #100daysofcode #git #github #gitlab #redteam #blueteam #ethicalhacker #cybersecurityawareness #cybersecuritynews #cybersecuritytips #python #hacker #kali #ubuntu #debian #docker
